Skip to main content

Troubleshoot SAML errors

Most SAML errors will be due to misconfiguration of the SAML Service Providers (SP) or the SAML Identity Provider (IdP). Ensure all SAML configuration settings match in your TLM profile and your SAML IdP.

You can troubleshoot errors with SAML enrollment requests by checking the audit log messages under Reporting & Auditing > Audit Logs menu within DigiCert​​®​​ Trust Lifecycle Manager and paying attention to log entries with a FAILURE status.

Inspect SAML traffic via browser extension

Browser extensions can aid with troubleshooting by allowing you to clearly see SAML requests and responses, e.g. the SAML DevTools extension for Chromium-based browsers (Chrome and Edge).

The SAML extension is visible when running the browser in Inspect mode. Use the SAML extension panel to ensure that SAML enrollments are sent.

Audit logs

Troubleshoot errors with SAML enrollment requests by checking audit log messages.

To troubleshoot SAM enrollment request errors:

  1. In DigiCert​​®​​ Trust Lifecycle Manager, navigate to Reporting & Auditing > Audit logs.

  2. Look for log entries with a FAILURE status.